In a seismic shift for the cybersecurity landscape, Palo Alto-based startup Glow has officially emerged from stealth mode, securing a $1.2 billion valuation in an all-equity Series A funding round. By raising $180 million, the company has instantly cemented its status as a unicorn, signaling a massive market bet on the necessity of re-architecting endpoint security for the age of generative AI.
The round was spearheaded by heavyweights Sequoia Capital, Cyberstarts, Greenoaks, and Redpoint Ventures, with additional participation from a coalition of high-profile investors including Index Ventures, Swish Ventures, Lux Capital, Operator Collective, and Holly Ventures. For a startup that has yet to disclose its recurring revenue metrics, this level of capital injection underscores the urgency of the security challenges posed by the rapid proliferation of autonomous AI agents and AI-assisted cyber threats.
The New Frontier: Why Endpoint Security Needs a Paradigm Shift
For the past decade, enterprise cybersecurity strategy has been defined by the migration to the cloud and the widespread adoption of SaaS (Software-as-a-Service) applications. However, Glow’s leadership argues that we are currently witnessing a "second wave" of digital transformation—one where AI agents are no longer just server-side tools, but active, autonomous participants running directly on employee endpoints.
"If you think of the past decade, everything was moving to the cloud and SaaS," explains Roi Tiger, co-founder and CEO of Glow. "Suddenly, AI lands on the endpoint in a way we’ve never seen. It is changing the fundamental surface area of the enterprise."
As companies integrate AI tools into their workflows, the attack surface has expanded exponentially. Threat actors are no longer just targeting human error; they are weaponizing generative AI to automate phishing campaigns, develop sophisticated malware, and exploit software vulnerabilities at a pace that traditional, reactive security tools cannot match. The release of models like Anthropic’s "Mythos," which has demonstrated advanced capabilities in identifying and exploiting software weaknesses, has sent shockwaves through the C-suite, forcing organizations to rethink how they protect their laptops, servers, and connected devices.
A Chronology of Innovation: From Conception to Unicorn
The genesis of Glow is rooted in the high-stakes environments of Silicon Valley’s biggest tech giants. Founded in 2025, the company was built by a "dream team" of engineering and cybersecurity veterans:
- Roi Tiger: A former vice president of engineering at Meta, whose deep understanding of infrastructure and scale provides the strategic backbone of the company.
- Omer Singer: Formerly the head of cybersecurity strategy at Snowflake, bringing institutional knowledge of data-driven security.
- Ophir Arie: A former vice president of R&D at Claroty, an expert in protecting the complex, interconnected environments of modern industry.
- Arnon Joseph: An engineering leader from Meta who rounds out the founding team’s technical pedigree.
- Emily Heath: Serving as Chief Operating Officer, Heath brings unparalleled expertise, having acted as the CISO for United Airlines and DocuSign, and serving on the board of Wiz through its monumental $32 billion acquisition by Google.
Since its inception in 2025, Glow has operated in relative silence, focusing on product-market fit and the development of its core technology. Despite being in stealth for less than two years, the company has already secured a roster of enterprise clients across the high-stakes sectors of healthcare, retail, and financial services. According to CEO Roi Tiger, the company’s typical deployments are not small pilots; they are massive operations covering tens of thousands of employee devices across global organizations.
The Technological Architecture: How Glow Operates
Glow’s value proposition lies in its ability to move beyond traditional Endpoint Detection and Response (EDR) tools. While companies like CrowdStrike, Microsoft, and SentinelOne have built empires by detecting threats after they emerge, Glow is aiming to prevent them from entering the environment in the first place.
The Glow platform functions as an intelligent, persistent monitor for the enterprise. It utilizes a combination of proprietary software and advanced AI models—leveraging Anthropic and Google’s Gemini through Amazon Bedrock—to map an organization’s entire software ecosystem.
Key Capabilities Include:
- Continuous Environment Mapping: The platform maintains a real-time, granular inventory of every AI agent, developer tool, and third-party software component running on an employee device.
- Proactive Policy Enforcement: Unlike legacy tools that alert after a breach, Glow enforces security policies at the point of ingestion. For instance, the system has already successfully blocked malicious npm packages—frequently used by developers to build applications—from being installed on customer devices.
- Risk Assessment of AI Agents: Glow identifies when AI agents attempt to pull in unauthorized software or interact with sensitive company data, effectively creating a "sandbox" for autonomous software.
- Health Monitoring: The platform detects devices where traditional endpoint protection tools have been disabled or are operating with reduced functionality, closing the gaps that attackers often exploit.
Implications for the Cybersecurity Market
Glow’s emergence as a $1.2 billion entity forces a broader debate within the cybersecurity community: Is "AI-native endpoint security" a distinct category, or just a feature of existing platforms?
The current market is undeniably crowded. Incumbents have spent billions on R&D to integrate AI into their own suites. However, Glow is betting that the shift is too fundamental for legacy architectures to handle. By building its platform with the assumption that AI agents will be everywhere, Glow is attempting to bypass the "technical debt" of companies that are trying to bolt AI features onto older, cloud-first security models.
For now, the startup is lean and focused. With nearly 100 employees—70% based in Israel and the remainder in the U.S.—the company is leveraging a global engineering talent pool to iterate rapidly. Whether or not they can maintain their momentum against the might of Microsoft or Palo Alto Networks will depend on their ability to prove that their "prevention-first" approach is significantly more effective than the current industry standard.
Looking Ahead: The Human Element
The success of Glow is also a testament to the changing role of the Chief Information Security Officer (CISO). With board-level figures like Emily Heath joining the startup, the message is clear: security is no longer a back-office IT concern; it is a business-critical strategic pillar.
As companies begin to grapple with the security implications of increasingly capable, autonomous models, the industry will likely see a surge in demand for platforms that provide transparency into what is actually running on the endpoint. We are moving toward a future where "shadow AI"—the use of unauthorized AI tools by employees—is the new "shadow IT."
Glow’s rapid ascent to unicorn status suggests that investors believe we have reached a breaking point. For enterprises that are scaling their AI initiatives, the ability to monitor, control, and secure the "edge" of their network is no longer optional. It is the new price of admission for doing business in an AI-powered world.
As the industry continues to monitor Glow’s trajectory, one thing is certain: the era of reactive cybersecurity is coming to a close. Whether through the innovative use of LLMs or a fundamental rethinking of device governance, the race to build the ultimate digital fortress has only just begun. Glow has taken a significant lead, but in the fast-moving world of cybersecurity, the only constant is the evolution of the threat itself.


